DL
Palo Alto
Diverse Lynx India
Location not stated
2 months ago
- AI
- triage
- Incident Response
- Threat Intelligence
- OpenAI
- LangChain
- AutoGen
- CrewAI
- Vulnerability Management
- SIEM
- Splunk
- Microsoft Sentinel
- Cortex
- SOC2
- EDR
- Python
- REST API
- AWS
- Azure
- GCP
2 months ago
- Key Responsibilities
· · Architect and configure the Multi-Agent Context Engineering (MACE) framework to ensure investigative context is shared effectively across AI agent teams.
· · Integrate Bricklayer AI with existing security tooling including Palo Alto XSIAM, XSOAR, XDR, and threat intelligence platforms via APIs and native connectors.
· · Build and maintain agent procedures, playbooks, and structured investigative workflows within the Bricklayer Workbench environment.
· · Collaborate with SOC analysts to translate manual investigation processes into automated, auditable, AI-driven procedures.
· · Establish governance controls and oversight mechanisms to ensure AI agent outputs meet accuracy, transparency, and compliance requirements.
· · Monitor agent performance and continuously tune AI models, prompts, and procedures for improved fidelity and efficiency.
· · Lead technical onboarding, enablement sessions, and documentation for internal teams and enterprise clients.
· · Stay current with developments in agentic AI, LLM tooling, and the evolving Bricklayer AI product roadmap.
- Required Skills & Experience
- Agentic AI & LLMs
· · Strong understanding of multi-agent orchestration architectures including agent coordination, tool use, memory, and structured reasoning patterns.
· · Hands-on experience with LLM-based systems (OpenAI, Anthropic, or similar) and prompt engineering for structured, reliable, auditable outputs.
· · Proficiency with agent frameworks such as LangChain, AutoGen, CrewAI, or similar — with the ability to evaluate and adopt new frameworks quickly.
· · Experience building human-in-the-loop oversight and auditability mechanisms within AI workflows.
- Cybersecurity Domain
· · Hands-on experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel) and SOAR tools (e.g., Palo Alto XSOAR, Cortex XSIAM).
· · Strong familiarity with the MITRE Telecommunication&CK framework, NIST CSF, and SOC 2 compliance requirements.
· · Experience integrating security data pipelines from EDR, NDR, firewall logs (e.g., Palo Alto PAN-OS), and external threat feeds.
- Technical & Integration Skills
· · Experience designing and consuming REST APIs, and building custom connectors for security tool integrations.
· · Cloud platform proficiency across AWS, Azure, or GCP in the context of cloud-native SOC environments.
Palo Alto · Diverse Lynx India